Files
File Path
|
Type
|
Category
|
Malicious
|
|
---|---|---|---|---|
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Docs.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 29 13:37:46 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Gmail.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 29 13:37:46 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Google Drive.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Thu Oct 5 07:00:51 2023, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Sheets.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 29 13:37:46 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Slides.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 29 13:37:46 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
C:\Users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\YouTube.lnk
|
MS Windows shortcut, Item id list present, Points to a file or directory, Has Relative path, Has Working directory, Has command
line arguments, Icon number=0, Archive, ctime=Tue Oct 3 09:48:42 2023, mtime=Tue Oct 29 13:37:45 2024, atime=Wed Sep 27 04:28:28
2023, length=1210144, window=hide
|
dropped
|
||
Chrome Cache Entry: 100
|
PNG image data, 39 x 32, 8-bit colormap, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 101
|
ASCII text, with very long lines (622)
|
downloaded
|
||
Chrome Cache Entry: 102
|
PNG image data, 35 x 32, 8-bit colormap, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 68
|
PNG image data, 970 x 1, 8-bit colormap, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 69
|
ASCII text
|
downloaded
|
||
Chrome Cache Entry: 70
|
PNG image data, 1 x 20, 8-bit colormap, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 71
|
PNG image data, 960 x 84, 8-bit colormap, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 72
|
GIF image data, version 89a, 1 x 1
|
dropped
|
||
Chrome Cache Entry: 73
|
GIF image data, version 89a, 1 x 1
|
dropped
|
||
Chrome Cache Entry: 74
|
PNG image data, 1 x 84, 8-bit colormap, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 75
|
GIF image data, version 89a, 1 x 1
|
downloaded
|
||
Chrome Cache Entry: 76
|
PNG image data, 970 x 1, 8-bit colormap, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 77
|
PNG image data, 200 x 34, 8-bit/color RGBA, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 78
|
HTML document, Unicode text, UTF-8 text
|
downloaded
|
||
Chrome Cache Entry: 79
|
ASCII text
|
downloaded
|
||
Chrome Cache Entry: 80
|
ASCII text, with very long lines (621)
|
downloaded
|
||
Chrome Cache Entry: 81
|
PNG image data, 35 x 32, 8-bit colormap, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 82
|
PNG image data, 1 x 91, 8-bit colormap, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 83
|
ASCII text, with CRLF, LF line terminators
|
dropped
|
||
Chrome Cache Entry: 84
|
PNG image data, 960 x 84, 8-bit colormap, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 85
|
PNG image data, 970 x 20, 8-bit colormap, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 86
|
PNG image data, 970 x 15, 8-bit colormap, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 87
|
PNG image data, 1 x 91, 8-bit colormap, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 88
|
PNG image data, 1 x 20, 8-bit colormap, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 89
|
PNG image data, 970 x 20, 8-bit colormap, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 90
|
PNG image data, 970 x 15, 8-bit colormap, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 91
|
PNG image data, 39 x 32, 8-bit colormap, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 92
|
Unicode text, UTF-8 text
|
downloaded
|
||
Chrome Cache Entry: 93
|
PNG image data, 200 x 34, 8-bit/color RGBA, non-interlaced
|
downloaded
|
||
Chrome Cache Entry: 94
|
HTML document, Unicode text, UTF-8 (with BOM) text, with very long lines (539), with CRLF, LF line terminators
|
downloaded
|
||
Chrome Cache Entry: 95
|
GIF image data, version 89a, 1 x 1
|
downloaded
|
||
Chrome Cache Entry: 96
|
PNG image data, 1 x 84, 8-bit colormap, non-interlaced
|
dropped
|
||
Chrome Cache Entry: 97
|
HTML document, Unicode text, UTF-8 text
|
downloaded
|
||
Chrome Cache Entry: 98
|
HTML document, Unicode text, UTF-8 text
|
downloaded
|
||
Chrome Cache Entry: 99
|
ASCII text, with CRLF, LF line terminators
|
downloaded
|
There are 32 hidden files, click here to show them.
Processes
Path
|
Cmdline
|
Malicious
|
|
---|---|---|---|
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --start-maximized "about:blank"
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=en-US
--service-sandbox-type=none --mojo-platform-channel-handle=2164 --field-trial-handle=1916,i,7651591374068356554,12617634830173413571,262144
--disable-features=OptimizationGuideModelDownloading,OptimizationHints,OptimizationHintsFetching,OptimizationTargetPrediction
/prefetch:8
|
||
C:\Program Files\Google\Chrome\Application\chrome.exe
|
"C:\Program Files\Google\Chrome\Application\chrome.exe" "https://www.lodop.net/"
|
URLs
Name
|
IP
|
Malicious
|
|
---|---|---|---|
https://www.lodop.net/
|
|||
https://www.lodop.net/css/default.css
|
123.57.208.27
|
||
https://www.lodop.net/png/inner_top_bg.png
|
123.57.208.27
|
||
https://goutong.baidu.com/site/
|
unknown
|
||
https://beian.miit.gov.cn
|
unknown
|
||
https://www.lodop.net:443/favicon.ico
|
unknown
|
||
https://www.lodop.net:443/png/inner_top.png
|
unknown
|
||
https://www.lodop.net:443/png/list_point.png
|
unknown
|
||
https://www.lodop.net/png/qq.png
|
123.57.208.27
|
||
https://hmcdn.baidu.com/static/tongji/plugins/
|
unknown
|
||
https://www.lodop.net/css/main.css
|
123.57.208.27
|
||
https://fclog.baidu.com/log/ocpcagl?type=behavior&emd=euc
|
unknown
|
||
https://www.lodop.net/png/logo.png
|
123.57.208.27
|
||
https://hm.baidu.com/hm.gif?hca=DA7661259EA8C1A9&cc=1&ck=1&cl=24-bit&ds=1280x1024&vl=907&et=0&ja=0&ln=en-us&lo=0&rnd=132588249&si=0cb508d79cf9b362fbfe253f23da969d&v=1.3.2&lv=1&sn=23142&r=0&ww=1280&u=https%3A%2F%2Fwww.lodop.net%2F&tt=Lodop%E5%92%8CC-Lodop%E5%AE%98%E7%BD%91%E4%B8%BB%E7%AB%99
|
14.215.183.79
|
||
https://www.lodop.net/png/body_bottom.png
|
123.57.208.27
|
||
http://bdimg.share.baidu.com/static/api/js/share.js?v=89860593.js?cdnversion=
|
unknown
|
||
https://www.lodop.net/
|
|||
https://hm.baidu.com/hm.js?f77310fb1e9bd277ac94694a069bd4e9
|
14.215.183.79
|
||
http://push.zhanzhang.baidu.com/push.js
|
unknown
|
||
https://www.lodop.net/png/inner_top_middle.png
|
123.57.208.27
|
||
https://www.lodop.net/png/body_bg.png
|
123.57.208.27
|
||
https://www.lodop.net/png/inner_slider_bg.png
|
123.57.208.27
|
||
https://hm.baidu.com/hm.gif?hca=DA7661259EA8C1A9&cc=1&ck=1&cl=24-bit&ds=1280x1024&vl=907&et=0&ja=0&ln=en-us&lo=0&rnd=1979009764&si=f77310fb1e9bd277ac94694a069bd4e9&v=1.3.2&lv=1&sn=23142&r=0&ww=1280&u=https%3A%2F%2Fwww.lodop.net%2F&tt=Lodop%E5%92%8CC-Lodop%E5%AE%98%E7%BD%91%E4%B8%BB%E7%AB%99
|
14.215.183.79
|
||
https://www.lodop.net/png/list_point.png
|
123.57.208.27
|
||
https://www.lodop.net/png/sina.png
|
123.57.208.27
|
||
https://hmcdn.baidu.com/static
|
unknown
|
||
http://t.qq.com/mtsoftware
|
unknown
|
||
https://hm.baidu.com/hm.js?0cb508d79cf9b362fbfe253f23da969d
|
14.215.183.79
|
||
http://weibo.com/u/1914599397
|
unknown
|
||
https://www.lodop.net/favicon.ico
|
123.57.208.27
|
||
http://tongji.baidu.com/hm-web/welcome/ico
|
unknown
|
||
https://www.lodop.net/css/prettify.css
|
123.57.208.27
|
||
https://www.lodop.net/png/inner_top.png
|
123.57.208.27
|
||
https://www.lodop.net/png/header_middle.png
|
123.57.208.27
|
||
https://www.lodop.net/push_tongji.js
|
123.57.208.27
|
||
https://www.lodop.net/png/header_common.png
|
123.57.208.27
|
There are 25 hidden URLs, click here to show them.
Domains
Name
|
IP
|
Malicious
|
|
---|---|---|---|
bg.microsoft.map.fastly.net
|
199.232.210.172
|
||
www.lodop.net
|
123.57.208.27
|
||
s-part-0017.t-0009.fb-t-msedge.net
|
13.107.253.45
|
||
www.google.com
|
142.250.186.164
|
||
hm.e.shifen.com
|
14.215.183.79
|
||
fp2e7a.wpc.phicdn.net
|
192.229.221.95
|
||
windowsupdatebg.s.llnwi.net
|
87.248.202.1
|
||
hm.baidu.com
|
unknown
|
IPs
IP
|
Domain
|
Country
|
Malicious
|
|
---|---|---|---|---|
142.250.185.228
|
unknown
|
United States
|
||
192.168.2.8
|
unknown
|
unknown
|
||
192.168.2.17
|
unknown
|
unknown
|
||
111.45.3.198
|
unknown
|
China
|
||
123.57.208.27
|
www.lodop.net
|
China
|
||
239.255.255.250
|
unknown
|
Reserved
|
||
142.250.186.164
|
www.google.com
|
United States
|
||
14.215.183.79
|
hm.e.shifen.com
|
China
|
DOM / HTML
URL
|
Malicious
|
|
---|---|---|
https://www.lodop.net/
|